Back to Home

Trust

How we protect your music

Your audio is never exposed as a downloadable file. Our server streams audio directly to guests. There is no URL to copy, no file to save.

Only people you invite can join. Invite codes are cryptographically random, and you can add a passcode for extra control. Bot protection runs on every join request.

All audio files are permanently deleted 48 hours after your party ends. No backups, no archives. We confirm deletion by email.

What happens when someone presses play

Our server verifies that the guest has a valid seat and the party is still active, then streams the audio directly. The guest hears music. Their browser sees nothing downloadable.

Who can access your files

Only you. Your tracks and storage are locked behind row-level policies that restrict access to the party's artist. Guests never touch your data. Our server handles everything on their behalf.

What we can't prevent

A guest can record what they hear. Screen recording, browser extensions, or a phone held to speakers. We raise the bar from “copy a URL” to “record the output.” Your guests are people you chose to invite.

Infrastructure

Stored on Supabase (AWS) with encryption at rest. Runs on Vercel. No analytics, tracking, or advertising.

To report a security concern: security@sideroom.link